sha.h 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303
  1. /* sha.h
  2. *
  3. * Copyright (C) 2006-2022 wolfSSL Inc.
  4. *
  5. * This file is part of wolfSSL.
  6. *
  7. * wolfSSL is free software; you can redistribute it and/or modify
  8. * it under the terms of the GNU General Public License as published by
  9. * the Free Software Foundation; either version 2 of the License, or
  10. * (at your option) any later version.
  11. *
  12. * wolfSSL is distributed in the hope that it will be useful,
  13. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  14. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  15. * GNU General Public License for more details.
  16. *
  17. * You should have received a copy of the GNU General Public License
  18. * along with this program; if not, write to the Free Software
  19. * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1335, USA
  20. */
  21. /* sha.h for openssl */
  22. #ifndef WOLFSSL_SHA_H_
  23. #define WOLFSSL_SHA_H_
  24. #include <wolfssl/wolfcrypt/settings.h>
  25. #include <wolfssl/wolfcrypt/types.h>
  26. #ifdef WOLFSSL_PREFIX
  27. #include "prefix_sha.h"
  28. #endif
  29. #ifdef __cplusplus
  30. extern "C" {
  31. #endif
  32. #ifndef NO_SHA
  33. typedef struct WOLFSSL_SHA_CTX {
  34. /* big enough to hold wolfcrypt Sha, but check on init */
  35. #if defined(STM32_HASH)
  36. void* holder[(112 + WC_ASYNC_DEV_SIZE + sizeof(STM32_HASH_Context)) / sizeof(void*)];
  37. #else
  38. void* holder[(112 + WC_ASYNC_DEV_SIZE) / sizeof(void*)];
  39. #endif
  40. #if defined(WOLFSSL_DEVCRYPTO_HASH) || defined(WOLFSSL_HASH_KEEP)
  41. void* keephash_holder[sizeof(void*) + (2 * sizeof(unsigned int))];
  42. #endif
  43. #ifdef WOLF_CRYPTO_CB
  44. void* cryptocb_holder[(sizeof(int) + sizeof(void*) + 4) / sizeof(void*)];
  45. #endif
  46. } WOLFSSL_SHA_CTX;
  47. WOLFSSL_API int wolfSSL_SHA_Init(WOLFSSL_SHA_CTX* sha);
  48. WOLFSSL_API int wolfSSL_SHA_Update(WOLFSSL_SHA_CTX* sha, const void* input,
  49. unsigned long sz);
  50. WOLFSSL_API int wolfSSL_SHA_Final(byte* input, WOLFSSL_SHA_CTX* sha);
  51. WOLFSSL_API int wolfSSL_SHA_Transform(WOLFSSL_SHA_CTX* sha,
  52. const unsigned char* data);
  53. /* SHA1 points to above, shouldn't use SHA0 ever */
  54. WOLFSSL_API int wolfSSL_SHA1_Init(WOLFSSL_SHA_CTX* sha);
  55. WOLFSSL_API int wolfSSL_SHA1_Update(WOLFSSL_SHA_CTX* sha, const void* input,
  56. unsigned long sz);
  57. WOLFSSL_API int wolfSSL_SHA1_Final(byte* output, WOLFSSL_SHA_CTX* sha);
  58. WOLFSSL_API int wolfSSL_SHA1_Transform(WOLFSSL_SHA_CTX* sha,
  59. const unsigned char *data);
  60. #if defined(OPENSSL_EXTRA) || defined(OPENSSL_EXTRA_X509_SMALL)
  61. enum {
  62. SHA_DIGEST_LENGTH = 20
  63. };
  64. typedef WOLFSSL_SHA_CTX SHA_CTX;
  65. #define SHA_Init wolfSSL_SHA_Init
  66. #define SHA_Update wolfSSL_SHA_Update
  67. #define SHA_Final wolfSSL_SHA_Final
  68. #define SHA_Transform wolfSSL_SHA_Transform
  69. #if defined(NO_OLD_SHA_NAMES) && !defined(HAVE_SELFTEST) && \
  70. (!defined(HAVE_FIPS) || \
  71. (defined(HAVE_FIPS_VERSION) && HAVE_FIPS_VERSION > 2))
  72. /* SHA is only available in non-fips mode or fips version > 2 mode
  73. * because of SHA enum in FIPS build. */
  74. #define SHA wolfSSL_SHA1
  75. #endif
  76. #define SHA1_Init wolfSSL_SHA1_Init
  77. #define SHA1_Update wolfSSL_SHA1_Update
  78. #define SHA1_Final wolfSSL_SHA1_Final
  79. #define SHA1_Transform wolfSSL_SHA1_Transform
  80. #endif /* OPENSSL_EXTRA || OPENSSL_EXTRA_X509_SMALL */
  81. #endif /* !NO_SHA */
  82. /* adder for HW crypto */
  83. #ifdef STM32_HASH
  84. #define CTX_SHA2_HW_ADDER 34
  85. #else
  86. #define CTX_SHA2_HW_ADDER 0
  87. #endif
  88. #ifdef WOLFSSL_SHA224
  89. /* Using ALIGN16 because when AES-NI is enabled digest and buffer in Sha256
  90. * struct are 16 byte aligned. Any dereference to those elements after casting
  91. * to Sha224, is expected to also be 16 byte aligned addresses. */
  92. typedef struct WOLFSSL_SHA224_CTX {
  93. /* big enough to hold wolfcrypt Sha224, but check on init */
  94. ALIGN16 void* holder[(274 + CTX_SHA2_HW_ADDER + WC_ASYNC_DEV_SIZE) /
  95. sizeof(void*)];
  96. } WOLFSSL_SHA224_CTX;
  97. WOLFSSL_API int wolfSSL_SHA224_Init(WOLFSSL_SHA224_CTX* sha);
  98. WOLFSSL_API int wolfSSL_SHA224_Update(WOLFSSL_SHA224_CTX* sha, const void* input,
  99. unsigned long sz);
  100. WOLFSSL_API int wolfSSL_SHA224_Final(byte* output, WOLFSSL_SHA224_CTX* sha);
  101. #if defined(OPENSSL_EXTRA) || defined(OPENSSL_EXTRA_X509_SMALL)
  102. enum {
  103. SHA224_DIGEST_LENGTH = 28
  104. };
  105. typedef WOLFSSL_SHA224_CTX SHA224_CTX;
  106. #define SHA224_Init wolfSSL_SHA224_Init
  107. #define SHA224_Update wolfSSL_SHA224_Update
  108. #define SHA224_Final wolfSSL_SHA224_Final
  109. #if defined(NO_OLD_SHA_NAMES) && !defined(HAVE_SELFTEST) && \
  110. (!defined(HAVE_FIPS) || \
  111. (defined(HAVE_FIPS_VERSION) && HAVE_FIPS_VERSION > 2))
  112. /* SHA224 is only available in non-fips mode or fips version > 2 mode
  113. * because of SHA224 enum in FIPS build. */
  114. #define SHA224 wolfSSL_SHA224
  115. #endif
  116. #endif /* OPENSSL_EXTRA || OPENSSL_EXTRA_X509_SMALL */
  117. #endif /* WOLFSSL_SHA224 */
  118. #ifndef NO_SHA256
  119. /* Using ALIGN16 because when AES-NI is enabled digest and buffer in Sha256
  120. * struct are 16 byte aligned. Any dereference to those elements after casting
  121. * to Sha256, is expected to also be 16 byte aligned addresses. */
  122. typedef struct WOLFSSL_SHA256_CTX {
  123. /* big enough to hold wolfcrypt Sha256, but check on init */
  124. ALIGN16 void* holder[(274 + CTX_SHA2_HW_ADDER + WC_ASYNC_DEV_SIZE) /
  125. sizeof(void*)];
  126. } WOLFSSL_SHA256_CTX;
  127. WOLFSSL_API int wolfSSL_SHA256_Init(WOLFSSL_SHA256_CTX* sha256);
  128. WOLFSSL_API int wolfSSL_SHA256_Update(WOLFSSL_SHA256_CTX* sha, const void* input,
  129. unsigned long sz);
  130. WOLFSSL_API int wolfSSL_SHA256_Final(byte* output, WOLFSSL_SHA256_CTX* sha);
  131. WOLFSSL_API int wolfSSL_SHA256_Transform(WOLFSSL_SHA256_CTX* sha256,
  132. const unsigned char *data);
  133. #if defined(OPENSSL_EXTRA) || defined(OPENSSL_EXTRA_X509_SMALL)
  134. enum {
  135. SHA256_DIGEST_LENGTH = 32
  136. };
  137. typedef WOLFSSL_SHA256_CTX SHA256_CTX;
  138. #define SHA256_Init wolfSSL_SHA256_Init
  139. #define SHA256_Update wolfSSL_SHA256_Update
  140. #define SHA256_Final wolfSSL_SHA256_Final
  141. #define SHA256_Transform wolfSSL_SHA256_Transform
  142. /* "SHA256" has some conflicts
  143. * If not FIPS and NO_OLD_SHA_NAMES defined
  144. * If FIPS V3 or higher and NO_OLD_SHA_NAMES defined
  145. * If FIPS V2 and NO_OLD_SHA256_NAMES defined
  146. * If FIPS v1 not allowed
  147. * If HAVE_SELFTEST not allowed
  148. */
  149. #if !defined(HAVE_SELFTEST) && \
  150. (defined(NO_OLD_SHA_NAMES) && !defined(HAVE_FIPS)) || \
  151. (defined(NO_OLD_SHA_NAMES) && defined(HAVE_FIPS) && \
  152. defined(HAVE_FIPS_VERSION) && HAVE_FIPS_VERSION >= 3) || \
  153. (defined(NO_OLD_SHA256_NAMES) && defined(HAVE_FIPS) && \
  154. defined(HAVE_FIPS_VERSION) && HAVE_FIPS_VERSION == 2)
  155. #define SHA256 wolfSSL_SHA256
  156. #endif
  157. #endif /* OPENSSL_EXTRA || OPENSSL_EXTRA_X509_SMALL */
  158. #endif /* !NO_SHA256 */
  159. #ifdef WOLFSSL_SHA384
  160. typedef struct WOLFSSL_SHA384_CTX {
  161. /* big enough to hold wolfCrypt Sha384, but check on init */
  162. void* holder[(268 + WC_ASYNC_DEV_SIZE) / sizeof(void*)];
  163. } WOLFSSL_SHA384_CTX;
  164. WOLFSSL_API int wolfSSL_SHA384_Init(WOLFSSL_SHA384_CTX* sha);
  165. WOLFSSL_API int wolfSSL_SHA384_Update(WOLFSSL_SHA384_CTX* sha, const void* input,
  166. unsigned long sz);
  167. WOLFSSL_API int wolfSSL_SHA384_Final(byte* output, WOLFSSL_SHA384_CTX* sha);
  168. #if defined(OPENSSL_EXTRA) || defined(OPENSSL_EXTRA_X509_SMALL)
  169. enum {
  170. SHA384_DIGEST_LENGTH = 48
  171. };
  172. typedef WOLFSSL_SHA384_CTX SHA384_CTX;
  173. #define SHA384_Init wolfSSL_SHA384_Init
  174. #define SHA384_Update wolfSSL_SHA384_Update
  175. #define SHA384_Final wolfSSL_SHA384_Final
  176. #if defined(NO_OLD_SHA_NAMES) && !defined(HAVE_FIPS) && !defined(HAVE_SELFTEST)
  177. /* SHA384 is only available in non-fips mode because of SHA384 enum in FIPS
  178. * build. */
  179. #define SHA384 wolfSSL_SHA384
  180. #endif
  181. #endif /* OPENSSL_EXTRA || OPENSSL_EXTRA_X509_SMALL */
  182. #endif /* WOLFSSL_SHA384 */
  183. #ifdef WOLFSSL_SHA512
  184. typedef struct WOLFSSL_SHA512_CTX {
  185. /* big enough to hold wolfCrypt Sha384, but check on init */
  186. void* holder[(288 + WC_ASYNC_DEV_SIZE) / sizeof(void*)];
  187. } WOLFSSL_SHA512_CTX;
  188. WOLFSSL_API int wolfSSL_SHA512_Init(WOLFSSL_SHA512_CTX* sha);
  189. WOLFSSL_API int wolfSSL_SHA512_Update(WOLFSSL_SHA512_CTX* sha,
  190. const void* input, unsigned long sz);
  191. WOLFSSL_API int wolfSSL_SHA512_Final(byte* output, WOLFSSL_SHA512_CTX* sha);
  192. WOLFSSL_API int wolfSSL_SHA512_Transform(WOLFSSL_SHA512_CTX* sha512,
  193. const unsigned char* data);
  194. #if defined(OPENSSL_EXTRA) || defined(OPENSSL_EXTRA_X509_SMALL)
  195. enum {
  196. SHA512_DIGEST_LENGTH = 64
  197. };
  198. typedef WOLFSSL_SHA512_CTX SHA512_CTX;
  199. #define SHA512_Init wolfSSL_SHA512_Init
  200. #define SHA512_Update wolfSSL_SHA512_Update
  201. #define SHA512_Final wolfSSL_SHA512_Final
  202. #define SHA512_Transform wolfSSL_SHA512_Transform
  203. #if defined(NO_OLD_SHA_NAMES) && !defined(HAVE_FIPS) && !defined(HAVE_SELFTEST)
  204. /* SHA512 is only available in non-fips mode because of SHA512 enum in FIPS
  205. * build. */
  206. #define SHA512 wolfSSL_SHA512
  207. #endif
  208. #endif /* OPENSSL_EXTRA || OPENSSL_EXTRA_X509_SMALL */
  209. #if !defined(WOLFSSL_NOSHA512_224)
  210. typedef struct WOLFSSL_SHA512_CTX WOLFSSL_SHA512_224_CTX;
  211. typedef WOLFSSL_SHA512_224_CTX SHA512_224_CTX;
  212. WOLFSSL_API int wolfSSL_SHA512_224_Init(WOLFSSL_SHA512_CTX* sha);
  213. WOLFSSL_API int wolfSSL_SHA512_224_Update(WOLFSSL_SHA512_224_CTX* sha,
  214. const void* input, unsigned long sz);
  215. WOLFSSL_API int wolfSSL_SHA512_224_Final(byte* output,
  216. WOLFSSL_SHA512_224_CTX* sha);
  217. WOLFSSL_API int wolfSSL_SHA512_224_Transform(WOLFSSL_SHA512_CTX* sha512,
  218. const unsigned char* data);
  219. #if defined(OPENSSL_EXTRA) || defined(OPENSSL_EXTRA_X509_SMALL)
  220. #define SHA512_224_Init wolfSSL_SHA512_224_Init
  221. #define SHA512_224_Update wolfSSL_SHA512_224_Update
  222. #define SHA512_224_Final wolfSSL_SHA512_224_Final
  223. #define SHA512_224_Transform wolfSSL_SHA512_224_Transform
  224. #if defined(NO_OLD_SHA_NAMES) && !defined(HAVE_FIPS) && !defined(HAVE_SELFTEST)
  225. #define SHA512_224 wolfSSL_SHA512_224
  226. #endif
  227. #endif /* OPENSSL_EXTRA || OPENSSL_EXTRA_X509_SMALL */
  228. #endif /* !WOLFSSL_NOSHA512_224 */
  229. #if !defined(WOLFSSL_NOSHA512_256)
  230. typedef struct WOLFSSL_SHA512_CTX WOLFSSL_SHA512_256_CTX;
  231. typedef WOLFSSL_SHA512_256_CTX SHA512_256_CTX;
  232. WOLFSSL_API int wolfSSL_SHA512_256_Init(WOLFSSL_SHA512_CTX* sha);
  233. WOLFSSL_API int wolfSSL_SHA512_256_Update(WOLFSSL_SHA512_256_CTX* sha,
  234. const void* input, unsigned long sz);
  235. WOLFSSL_API int wolfSSL_SHA512_256_Final(byte* output, WOLFSSL_SHA512_256_CTX* sha);
  236. WOLFSSL_API int wolfSSL_SHA512_256_Transform(WOLFSSL_SHA512_CTX* sha512,
  237. const unsigned char* data);
  238. #if defined(OPENSSL_EXTRA) || defined(OPENSSL_EXTRA_X509_SMALL)
  239. #define SHA512_256_Init wolfSSL_SHA512_256_Init
  240. #define SHA512_256_Update wolfSSL_SHA512_256_Update
  241. #define SHA512_256_Final wolfSSL_SHA512_256_Final
  242. #define SHA512_256_Transform wolfSSL_SHA512_256_Transform
  243. #if defined(NO_OLD_SHA_NAMES) && !defined(HAVE_FIPS) && !defined(HAVE_SELFTEST)
  244. #define SHA512_256 wolfSSL_SHA512_256
  245. #endif
  246. #endif /* OPENSSL_EXTRA || OPENSSL_EXTRA_X509_SMALL */
  247. #endif /* !WOLFSSL_NOSHA512_256 */
  248. #endif /* WOLFSSL_SHA512 */
  249. #ifdef __cplusplus
  250. } /* extern "C" */
  251. #endif
  252. #endif /* WOLFSSL_SHA_H_ */